oss-sec mailing list archives

Re: clamav: md5 collision based detection avoidance, Was: Out of bounds read and segfault in xar parser


From: Joel Esler <joel.esler () me com>
Date: Wed, 04 Oct 2017 11:28:38 -0400

On Oct 3, 2017, at 2:54 PM, klondike <klondike () xiscosoft es> wrote:

There is also another fun issue with the way caching works (which is
enabled by default) that allows avoiding detection by ClamAV.

I will ensure this is prioritized for a future release.


--
Joel Esler
Manager
Talos Group
http://www.talosintelligence.com

Current thread: